Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

userplus — Vulnerabilities & Security Advisories 4

Browse all 4 CVE security advisories affecting userplus. AI-powered Chinese analysis, POCs, and references for each vulnerability.

Userplus is a user management platform designed for authentication and access control in web applications. Historically, it has been vulnerable to classes including remote code execution, cross-site scripting, and privilege escalation, with four CVEs documented. Security assessments reveal common flaws in input validation and session management, potentially allowing unauthorized access or system compromise. While no major public incidents have been widely reported, the consistent pattern of vulnerabilities suggests implementation risks. Organizations using Userplus should prioritize regular security updates and input sanitization to mitigate potential exploitation risks associated with its authentication and user management functions.

Found 1 results / 4Clear Filters
CVE IDTitleCVSSSeverityPublished
CVE-2024-52442 WordPress UserPlus plugin <= 2.0 - Privilege Escalation vulnerability — UserPlusCWE-266 9.8 Critical2024-11-20

This page lists every published CVE security advisory associated with userplus. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.